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1. -^i^m^mm^m^mifam^^^:^^. m^-Mm^^uTut 

^^15% S, ^^^"SLIi^V, ^^^^6<jmm^t>m, %m^WL: ^I^B„(l), B„(l) 

5 LB„(i), B„(i)6<j^^i^ RB„.,_„(i), nm'^^^nm^-^ d, i>* 

3mm Bj^m^nmrnwi m=f' cdp n^m^ bcda mmwi p m^^^^^^ 

r; 

1) ^S^^S ^m^^— -t^TCxeLBJl); 
10 2) ^^I^-Slseffi RSSBG(x, d)^^(x. a) GB„(1)XB„(1), -D^^x' =a-'xa; 
(x, x)#jfc>Sfi<J^^, ^^^Tfia'f^^Sfi^J^i.ig, 

m^^K— t-^TCb eRB„.,_„(l), ^M'(S!ffiiB6<J^«^|gafBJ^^fi<lBStn.^7nb3{* 
m Sign(m)=a'byb-*ai 

5) n^mm^mmwimmik h jfd-^^m m wmi^nnm y=h(m); 

6) ^J^sign(m) - y^^^^, Kll sigii(m):^S— ^-^^S^S^ ; ^^Kil. 
20 7) m^siga(m)x - xyS^^lfc, RiJ sign(in)^^— ^-^fe^^ s ^^il. 

25 C2-1 > n,m,l,d5 

(2-2) Btm^^-^^Tn x MiP^-^ LBmO); 
(2-3) |^^3fe#— ^^7nbM^^'^Bn(51); 

(2-4) Th#y=6"*JcZ»j 

(2-5) WS^r^-^^^^ $n^0, jRijTt-# y=cycling(y)= a-w , WPJit^ y 
30 =decycling(y>= a"'xa ; 
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(2-6) mm y m^M'i'm^ sssix)&.s. m^d ^m^mmm 
(x.y) ^-2^15, a^^m-. wmx (2-5) 

(3-1) m^-^wmmnmrnn, ^mihK(m)-^m^\[iogi2,nm'^^Mm' 
mmm^ H(m)-i?c^^^ 1 m. riiir2|| - hri; 

(3-2) Ri MmihSi^mji Ai, ^JS-H-^ h(m) =A1*A2-A1 BP j^0f 

^tfy h(m)o 

i^e<j^^6) > 7) ^mmmk'QQXiKn'^mm^'m.mk^', 

(4-1) JirA^TC a,b.jfe#if p> r#Tt-^^J|#tEPa(t)!JJl^Pb(t); 

(4-2) iStm3&#r^^|SJ6<FlS6aifeti(I=l,2 - r), ^tI*^ Pa(ti)=Pb(ti)|[PfiKtt; 

^W— t^T^^Ji, ji|lja~b^m:&; ^tP^iE, jam (4-3) : 
(4-3) it#Maxin£(a) = Maxinf(b)SW^a:, jS'J a~b ^^tt; 

jjr. jam (4-4) ; 

(4-4) it^ Minsup(a)=Minsup(b) J^^J^^r, JRiJ a~b ^ 

J5a^, jil!j#jil!|a~b^^Ao 

3^ n ^ 20 ~ 30 fSJ, 1=3, d=4, p ^ 2" ~ 7?^ n, m tk n /Jn 4. 



-^m^i^mm^m n m m wc^^^ ism 

2js::s:Bj^^— csp (^$Bfi^^) fpjMjfpcDP i^mn^:> nmmm. 
6<jS5«tt±6<j. mmmm'^m-m.^mmtj^^wim-mmm^mm^mimmK, rsa^ 

n^^mmM:kmWin^Wi\iXmU^±'n., >^ 512 bb^iO 1024 tb#iij2048 tb#o Efei • 

g 2000 S ^# Ki Hyoung KO^ Sang Jin Lee CRYPTO 2000 M iB 

JSTo, S. J. Lee, J. H. Cheon, J. W. Han, J. S. Kang and C. S. Park, New Public-Key 

Crytosystem Using Braid Groups, Proc. of Crypto 2000 , LNCS1880, Springer-Verlag 

20 (2000) 166 il83.:> , ^^^^^^fii^f iJ^PJ jr^^fi^Iff ^WSIKlfC^^^^ 

^J— JLtaW— ^mif6<lif^^l^o ]t?!j2003^, ^ffl^#Ki Hyoung KO, Doo 

Ho Cho^^^^mjn^m=^mm^%nm^^^WMiKi Hyoung Ko andDooHo 
Choi and Mi Sung Cho and Jang Won Lee New Signature Scheme Using Conjugacy 
Problem Cryptology ePrint Archive: Complete Contents 2003/168^ SCSS liilS CSSo 

25 mimm^m-'y [31 ^m^^^^wm, scss i^^csso 

n^^tSm^Wi^\ SCSS: 

^m-. aGB„, mSLX^=a-'xa', 
30 7!i=f—^i^^m\tW^mM>m, m sign(m)=a-> . y=h(m)« 




i&TiE: —^^^sign(m)M.^m^^^M.i5L'^'. sign(in)~y, x'sign(ra) ~ xy 

EM. iP k-csp loij^o ^j-^m\^±tPim. «iliJ±iT css^^#^j. 

b-'xb, y=h(m||a), b'^yb, Y= b-'ay a-'b,^g,i.mfi<I^iSsign(m)= 

10 (a , 0 , Y)o 

3&1iE» mSm6<J^^sign(m)=(a, p, y a-- X, 

P ~ Y ~y, a P ~xy, a y ~x' y 
CSS^^^fiJi^giATBSmifcS^b, @Jlfc^g»6<J3£J3RT k-CSP folM. -fs^W 

15 

20 scss^'fiUk-cspiPiM, Mja^x^ CSS, ifn-Mmmi^umxxmm'j>, ^ 

B„(i)6<j£T^ LB„(i), B„a)s<j^^^ RB„.,-„(i), mm'^m^mmmmd, >^fcb#${o. 
25 i}*mmm B„(m^\^WLnmm h, cdp ^j^^^* bcda mmm v mn^m^m 

1 ) ^ S Bim^fiK— -t^^TC X e LB„(1); 

2 ) -Ij S 'dgffi RSSBG(x, d)fe^(;e ' , x. a) e B„(l) X LB„(1) X B.(l) , x' =a-'xa; 

RSSBG(x, d)#?£i§J#iffiiijtoT: 
(2-1) n^,l.d. 
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(2-2) m^^^—^MTt X MfM^ LBm(l). 

(2-3) mumn-^mTt b m^m^ Bn(5i). 

(2-4) T+» y=r'x& 

(2-5) ^tt;«l#. ta^O, PJih^ y=cycling(y)= a-'*a , ?5Ji!ljTh5? y= 

5 decycling(y)= a"';ea 

(2-6) mm y s^M^*-^ sss(x)iiA^ i(y)^d mmf^Mmm 
(x.y) ^^^49. a^nkm, ^m-^^^ir.> wmx <2-5) ^-i^^^. 
3) sMmm^^mmMm^^^mmmm^khnmy^Hm) eB„(i), ^js^ 

10 ?gm m ^iS^Sa Sigii(m)=a-'byb"'a! 

(3-1) iiai#-^#MiC3^y®ifcH, H(m)-K:S^ l[log/'](RrUtm^), ^ 

j5J|^H(in)-^>:^^^imRl||R2|| - ||R1. 

(3-2) —^miRinm.^S^m7iiAi,mBT!\-WHm)=Al*A2-"Al m^m^^h(m). 
15 4) ^^#)|^mmms -^^(x, X). m6<J^igSign(m):^j||^^^^ijE:^Vj 

5) M^mm^mm^&mmmhMmMm^mT^-nnm r-Hm); 

6) ^J^sign(m) ~ yS^;K:Sl, m^^^L, JRlJ sign(m)/r:jfe-^-^^i^« ; 
liimi^SI?) ; 

20 7) sign(m)x'~ xy^^^^L, ^:T^^:iJ!:. jil!|sign(m):^S--^'^^*^^? 

m sign(m)^mE m ^^^^^ <. 

^j^M^^Tu a.b A'l^^m^m^n^ bcda i^^jsx^^T: 

(6-1) i^A^7Ca.b,jfe#iJ^^#!tp. r^T^#^#^EPa(t)U^&Pb(t), 
(6-2) ISimjfe#r>h^|Hl6<lBimi!Cti(I=1.2 - r), #Tt# Pa(ti)=Pb(ti)|P^A. 
25 jmja-b^^A; Wyi^ (6-3) o 

(6-3) Tt-^Maxinf(a) = Maxinf(b)S^^:&, JMa-b^^ils UW*^ 

(6-4) o 

(6-4) 1+^ Mmsup(a)=Miiisup(b) ^^^iL, JftiJ a~b ^l^^ot; ^fifc^. jRO 

30 i^:*::^HJfi<lU[^^^:^ti» W^PTtt^: 

1 SiFiPATBt^'HsHTb, 'B5^#hXt'^^?gSm. ^fBX5f(sign(m). h(m))6«I^^7C 
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$aX5|-(sign(m). h(m))W^$S7nW k-CSP fRl®o Rr##^ 1. 

5 6<]HtriiT. -XX^'-^Ji^n^i^. ^m^^, nmm^io 













scss 


^tsgii-M^: 1 


mmmn-. 2 




k-CSP 
MCSP fRlM 


CSS 




l^i^ig^: 4 




m^J k-CSP 
MTSP {vjm 




^«BTh^s 2 

tfcyy^^s 1 

I?: 


^iSB^|5|l3e: 2 
WL^T^m: 1 
2 




ft¥2te7 k-CSP 

MCSP ra]M. 



3 3|s::^BjtaJiirT'f#^6tiRSA^^^?*'(^ffl^^^|si#^6<j|!!:^^?iili. ^^gj^^k 



n 






m 








20 


370 


1653 


17.82 ms 


18.68 IDS 


30.87 ms 


2220 
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24 


478 


2138 


21.70 ms 


22.79 ms 


41.75 ms 


2356 


28 


591 


2648 


24.42 ms 


25.77 ms 


59.59 ms 


2SJ0 



5 mSmRJ 

m 4 CDP iri®^j^#?* bcda ^mmMn . 
^m^, ^ji.'Sfiti^^Tno,, o, o^,m^^M^^%'. 

a. a. =0.0. (|i-j|>l, l<i, j<n) (1) 
o .o a ^o f Oj (|i-j|>l, 1 <if j<n) (2) 

ri^^iim-t^^^o,. o^,^mmmm,m&i'm. ia^LB„, w^^i^w 

20 n-l-m^h^^TUo^,, o o „.,^^e<jT^P4B.fi<J*T^. iBmRB„.,.„. 

TC^m (1) a^pJ^: ftl|t(x, y)eLB„XRB„.,.„, ^xy=yx„ 5?^j•T-'^^7^b, ^teR 

'g.-^o,, 02 o„.,M^-^o,. o„.,e<j3t7n, itiiJI^b^— ^jEtg. ^XtiP 

iE7Db^ a, W— 4"iE7nSK-^'&7Cc'®#b=ac, Wm^^hm^Tt. ^7UA=(o , o o ^,)(o 
jOj-o^j)-.. (0,0,) (o,) l^j%^fWB;:E»7Do A^J£Ab = T(b)A, T(05)=o„.,, 

25 ^fl^- A e«l^7njf5?^gg^7n. 'ffe^nmfiKfi^J^-^^PXtlS^Sf Snfitnl^hTC^ Jt^iS. Sj«:a6<j^ 

TUPXffl — ^S^« :{0, 1, .... n-l} {0, 1, ... , n-l}5|5^^- 
^7Cb|P#^Pi— b = A " n , Ji J ••• It ,. ^if" « 5^— I^S^TU. be<J A 
^■feSJgJSCiPT: in«[b) = u, 8i5)(b) = u+l , 1(b) =U 

30 JS'm^Tnx. y^m, iamx-y. MI^TC a ID^^^^igBXt (x, y) fi<j^^7Ci» "~" 



^-#^ifr^mo ^^fi<is**iBfR)®^^-^iB^j^f°i® CDP nmMim,7m.m^^ 
cspfpiMo m\^cmnmMi^nx ^jt^iuiiTc^ (x, y) eB„xB„, nmx--j^ 

B„ (x - y) . iJtm-^mTt aeB„. -(^^ y=a-'xa. OT^^S<J*1^i, SBir^^:^— ^ 
W^6*I#5*Rn5l^^:^^fl*fS]rtft?^*CSP N®, miStMm^J&Mtfy-'^m^ (x, y) 

eB„xB„ , mnm csp nmmj,mMtfym^tfo~^mmmmo m^^xm^mm.^^^ 
10 :^^^*6tI^^'l4J^^^^£Mcsp^Rl^^KJ^){t^4±6<]. ^smww^^^^^^NMfi^j^ 

^#^JfiiEHJT MCSP fR]®-^ CSP fnlj©^Klaxl^i^^tto ^ii MCSP fRljm5?ttoWJi5i&$n 

T: 

B^: mmB^i^-^^mn cx, x- > eB.xB„, m-^mTty^B^ 

IRIM: Ji^PJ— eB„ilJ£: y ~ y xy ~ x- y 

15 

^llB„ , &mmhB„ s ;&^g^RB„.,.„ , Heimlich ^ K4'B„6<]^ 

fi<lB„6<j^S^. ;&^g^RB^,.„5t;^m7no„+„ o„^, o „.,^^6<j b„6<j 

20 

^15^^: -2^^: — 51* CSP |aI®:}^ffl){|fRl®e<J^$B5lt (x, X ') eLB„XB„^«9; aeB„ 
X '=a-'xa; 

XrfT-^^^fi^mmm, f^feit^ y=h(m). ^Js^mM-^^lii^lSim®^ 
bSRB,.,.„, m sign(m)=a-'byb-'a (JSLS 5) 

25 5l*iP^iEm^iS sign(m):^-^^*^iS^JL^X^: sign(m)~y. x'sign(m)~xy (ja 

ffl 6) 

5[*l"^ — sign(m), sign(m)=a-'byb-'a= (Va) "'yb 'a, iSJc sign(m) - 
ym±i Mx'sigii(m)=a-'xaa-'byb-'a=a-'xbyb 'a, fi-^xeLB„, bGRB„.,.„, Silk xb= 
bx, >yi.MWx'sigii(m)=a-'xaa-'byb'*a=a-»xbyb-'a=a-'bxyb-'a= (b'a) ' (xy) (b'a) , 
30 >y;,Mx'sign(m)~xy. El*— ^'^featl5£iS.^SRrW®3±MffiM. 
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(x. X*) . ^y=h(m), ^^-e^iifitJ^^ sign(m)ilJ£ sign(m)~y^ x* sign(m) ~ xy, M 

nI!^m»fi<J3i^fck-CSP nMo mi% k-CSP fp)®«^^5nT: 

5 B^: k3(t^«B5?^ (x,, x,- ) , , (x„ x,' ) eB„XB.J.x,' =a-'Xia k) , 

i^M: il5iiJbeB„, ^nxi =b-'xjb (i=l, 2 k) . 

m, mm^^w^mmmo -^^^^mm^mn, u d mmi=3. d=4) « ^B.o)={b e 

Bn|0 ^ inf(b), sup(b) ^ 1}, !illJ|B„a)l <(n!y^=^PS6<J- |sim£„a)={b eLBjO < 
10 in«b), sup(b) ^ 1} , RB^,.m(l)={b 6RB^».n.|0 ^ inf(b), sup(b) ^ l}o K*^— 1^^ 

±6<](n.i)x(n-i)Rft-^P$*«^. A##^i^ljiy*nTs 



15 





'-t 




"1 t 








1 1 




-t 




1 / 


O 1 = 






1 1 


••• 0 J = 


-t 


1 




1 




1 1 



1 t 



-t 



0(ln), WT!JJl±^jaK, ^^^rt6<I^Jt#^^iJ*3sicfi:m^^l^fi^m?£^^5S»3s#, -ffe 

20 ;yL#5iJ->hi^^fi<jSi!c.i^®^XtiP^5l5fifW®^<tffi^.fei^i§ifeHq|ft^ B„(l) 
SljLaurent03l^JfZ[t, t-']6<J->h®!lfcs g->det(<P(g)-l), ^-fge B„0). <Pfe)^gfi<JBurau 

J^a(Pg(t)) ^l(n-l)n/2. ^JB^M^^TCa, be B„0)JiW^^» minT6<l3EmiiJ:;^i!li5S:: iSfe 
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m^n^t, (i=i, 2 - r) i5WPa(ti)=Pb(ti)' mmthu mmm^ *Ta(Pe(t)-Pb(t)) ^Kn- 
1)11/2. mi:k-^mpjit)-m=oM^Rmin-i)rJ2^mo ^unmvx\^.it)^ utm^^-:^^^^ 



5 #g^S^O(m^)o 

Maxinf-MinsupiflioS;. 5Cir^^7G6<JxeB.(l), mjJCMaxmf(x) = Max{infi[y)ly ~ x. ye 
B„(l)>. Minsup(x) =Mm{sup(y)ly ~ x, yeB.G)}o BfiiMaxinf-Minsupgim, BPJtt^ 
TCa, beB„(l), ^JiTMaxinf)[a)=Maxmf(b), Minsup (a) =Mmsup (b) S^fP^jt, 
^IZl, WMiBl, ^I'MtbOo T®^dlvt#Maxin£(x)^Minsup (x) 6<]#V*i«5i&. t^fe^JJC 

10 M^^f^. ^x = A " n , n , - IT , , cycUng ( x ) =( x "( n ,))-'x t »( oi ,). decycling(x) = n ,- 'x n 
,0 JJ^xtii^mcycling (ta^^J decycling) ^>f^, l:iiJinf(titJn C^S'J sup{tJg4d>) . ^iSUA 

Maxinf(x)(^SiJ Mmsup(x)o i^#fe6*J«ife^«flt#*?l:iC: J.S.Birman. K. H. Ko and S. J. 
15 Zee, Theimmum, supremum and geodesic length of a braid conjugacy class . to appear in 

Advances in Mathematics. . 

^^^^a, b51jl7gEMiiJ::'^i!lT5'J^nMaxinf-Mmsup3!!!T*. WypTUt^J^a-b^it, RW" 

■^mmnm^tmm^Wm'^U^ K.H.KO, S.J.Lee, J.H.Cheon, J. 

20 W. Han , J. S. Kang and C. S. Park, New Public-Key Crytosystem Using Braid Groups , 
Proc. of Crypto 2000. LNCS 1880. Springer-Verlag (2000) 166 tl83o 

Bmo' n'^^^^isr.iM - iir„ m-m.m-^m^MioBi''% *^B„o)fi^fi^7c^nJ ^• 





^J^^^r^'^m. ^^X-mm^, M^->h^7nxe B„a), ^X^tHfi^Isuper summit 
5 ^SSS(x)={ye B.O)|y ~x, inf(y>= Maxinf(x) , sup(y)= Minsup(x)} o ^-t^^^vSe^^^^S 
m^|SSS(x)l. ^^(ff ^^^^ yfBia^lSdCx. y)=min{l(b)ly=i.-'«6}. 

^^^.(x,rf) = {yeS55(x)|d(x,3^)^rf}. 5femxes(x, d). JHU^W Cx, X) fi<)CSPfRl®^ 

10 1 Bltflj^^— ^^7n6e5,(5/). Tt-^fe-*x&, 

2 ^m5^mr'x6-^^Jfl<]cycling^#decyclmg^##PJx, l[^Jxffl^SSS(x)^Jt 

^^#mn, 1. d. p(m#n^20 ~ 301«1. 1=3. d=4. p^2- 2«f«l). 

25 2 {§^^t*RSSBG(x, d)»5!l^^ Cx, x) *l^^a. 

1 5?*|lil^^^6<J?i'tmiSffli5C?!)®!gtli^5lJy=h(m); 

2 ^^TCb xe a"'iyfe''a . ^JuT^^byb'^ \ 

3 -eeffl^Sik^. -H-^^^sign (m) ^a'byb-'a . 
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^ijE:^V: 

c) it^xsign (m) ^xy? ^ffi#?*BCDA^J^x'sign (m) — xy:l=if ^:it, ^ 
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